Thursday, June 21, 2018
  • share this

How to elude hackers with decent password security

/ 03:11 AM March 17, 2017
silhouette of woman typing on lapton

In this photo illustration, taken Dec. 12, 2016, a woman types on her laptop, in Miami. Details from the Department of Justice indictment of Russian hackers on Wednesday, March 15, 2017, show that many people are still not taking routine precautions to safeguard their email accounts, and hackers are exploiting that. (Photo by WILFREDO LEE/AP)

NEW YORK — Details from the Department of Justice indictment of Russian hackers on Wednesday show that many people are still not taking routine precautions to safeguard their email accounts — and hackers are exploiting that.

The Russian hackers didn’t have to work very hard to break into people’s email accounts, even those belonging to government officials or powerful executives. Here’s a look at a few simple ways to help safeguard your email account from hackers.

Dont’t reuse passwords

Many online break-ins result when people have reused a password across, say, their email, social and financial accounts. If it’s compromised at any one of those services, the others are suddenly vulnerable.


One simple way to avoid this problem is to start with a base password you can remember, and then add on letters and numbers that reference where you’re using it. If your base password is “greatsurfer2017” (which isn’t particularly secure; more on that in a moment), you could make “greatsurfer2017Y” your Yahoo password, and “greatsurfer2017G” your Google password.

If you can’t be bothered to do more, this is a base level of security that can help shield you from the most obvious threats. But it’s still only a baby step.

Pick a stronger password

You can make things harder for attackers by making your base password stronger. The more complicated and lengthy a password is, the harder it will be for hackers to guess.

The downside: Tougher passwords are also harder to remember. But there are some ways around that.

Don’t include your kids’ names, birthdays or references to any other personal details. Hackers routinely troll Facebook and Twitter for clues to passwords like these. Obvious and default passwords such as “Password123” are also bad, as are words commonly found in dictionaries, as these are used in programs hackers have to automate guesses.

You can make your own strong passwords with randomly capitalized nonsense words interspersed with numbers and characters — like, say, “giLLy31!florp.” (Just don’t use that one now that it’s appeared in this story.) So long as you’re making up the words yourself, these are difficult for hackers to crack — and they’re easier to remember than you might think, though you might want to practice them a few times.

Have your passwords managed for you

Of course, you can make things easier on yourself by using a password-manager service such as LastPass or DashLane, which keep track of multiple complex passwords for you. Some web browsers such as Apple’s Safari and Google’s Chrome also have built-in password managers; these work if you switch devices, but not if you switch browsers.

After you create a strong password for your password manager, it can create random passwords for your other accounts — and will remember them for you as well.


“It’s more secure and it makes your life easier,” said Jamie Winterton, director of strategy at the Global Security Initiative at Arizona State University.

Multifactor authentication is a must

The next line of defense is two- or multifactor authentication, which asks users to enter a second form of identification, such as a code texted to their phone, when they log in. It’s now commonplace for many email and social media accounts. That way, even if hackers manage to get your password they still need your phone with the texted code.

“Having another way for that account to say ’Hey, is that really you?’, and give veto authority is really important,” Winterton said.

Keywords matter

According to the indictment, the Russian hackers searched email accounts for keywords like “passwords” to find people’s passwords for other accounts. They also searched for “credit card” “visa,” among other terms. So think twice before you use common key words that can serve as a road map to sensitive information for hackers. And don’t save passwords in old emails.

“There’s not one single thing out there that can keep you perfectly safe,” Winterton said. “But there are a lot of different things out there that can keep you almost perfectly safe.” –Mae Anderson

Don't miss out on the latest news and information.
View comments

Subscribe to INQUIRER PLUS to get access to The Philippine Daily Inquirer & other 70+ titles, share up to 5 gadgets, listen to the news, download as early as 4am & share articles on social media. Call 896 6000.

TAGS: choosing passwords, Cybersecurity, preventing hacking
For feedback, complaints, or inquiries, contact us.

Joma: Suspension of peace talks ominous

June 21, 2018 06:31 PM


PlayStation 4 debuts budget Hits range

June 21, 2018 06:23 PM


Thunderstorms hit Metro Manila, nearby provinces

June 21, 2018 06:22 PM

© Copyright 1997-2018 | All Rights Reserved

We use cookies to ensure you get the best experience on our website. By continuing, you are agreeing to our use of cookies. To find out more, please click this link.